WordPress.org

Ready to get started?Download WordPress

Forums

My blog is hacked - need help! (11 posts)

  1. bahcevan
    Member
    Posted 6 years ago #

    When I did a Google search for my name today, the first result was my blog, but after my footer text, I saw these spammy keywords for pills.
    Here's a screenshot: http://www.cafefernando.com/images/hck.jpg

    I made some research as to what causes this and read in a blog that this is some kind of hack and the hacker possibly added code to the footer file in my theme that would add the spam links, but only for certain user-agents (i.e. Googlebot or Yahoo’s crawler). View-source with a normal web browser doesn't show the links. I followed advice and found the spam words using view source on the Google cache. Here's the screenshot (spam words link to a blogger called pete ashton):
    http://www.cafefernando.com/images/hck1.jpg

    I check my footer.php but do not see any of these links. Does anyone know where I should look at (this hack was done on http://cafefernando.com/turkce )? Many thanks in advance!
    Cenk

  2. hotkee
    Member
    Posted 6 years ago #

    Probably some javascript in the header?

  3. bahcevan
    Member
    Posted 6 years ago #

    I checked the header.php but no codes there...

  4. hotkee
    Member
    Posted 6 years ago #

    Well I just tried google turkey and its showing something different now

    http://www.google.com.tr/search?hl=tr&q=cafe+fernando&btnG=Ara&meta=

  5. bahcevan
    Member
    Posted 6 years ago #

    You have to check the cache (text only). Here's what it shows (scroll to the bottom after you click on the link):
    http://74.125.39.104/search?q=cache:EhEaxhYbwRsJ:cafefernando.com/turkce/+cafe+fernando&hl=tr&gl=tr&strip=1

  6. hotkee
    Member
    Posted 6 years ago #

    Ok try checking your comments, especially spammed comments.

  7. bahcevan
    Member
    Posted 6 years ago #

    I just checked the comments as well. I moderate all the comments so a spammy comment is never approved. The rest are deleted. No spammed comments found. anything else you can think of?

  8. hotkee
    Member
    Posted 6 years ago #

    The cached page that google has is probably through the comments posted on your site I think - and those comments have probably been deleted if you are using anti spam plugin. If you see the problem on your site directly still, then its an issue.

    Also if you are running older version of wp, then you should really upgrade as soon as possible.

  9. bahcevan
    Member
    Posted 6 years ago #

    That makes sense! Thanks a lot for your help. I'll upgrade as soon as possible.

  10. Orbitfish
    Member
    Posted 6 years ago #

    I took a look at the code for the header and footer on our blog and found hundreds of lines of spam in there!

    Running v.2.1.2

    I'm a newbie to this stuff, but it kinda worries me that there are all these spam messages in there. However, there is nothing showing on the site! The header and footer look perfectly fine.

    Should I just delete the offending lines of code?

    Guess I should upgrade soon, eh?

    Orbitfish

  11. bahcevan
    Member
    Posted 6 years ago #

    On a second thought, I don't believe this problem has anything to do with previous spam comments. Links appear right after the footer..

Topic Closed

This topic has been closed to new replies.

About this Topic